CycloneDX / CycloneDX/specification

Support for api-resolver as a technique

Open
#443 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
XSLT
Stars
547
Forks
93
Avg merge
7h 11m
Merged PRs (30d)
37

Description

The documentation for [swhid](https://cyclonedx.org/docs/1.6/json/#components_items_swhid) suggests to include an evidence for identity.

Often the swhid could be obtained by performing a search (manual and automated) on the official site https://archive.softwareheritage.org

Consider adding `api-resolver` as a [technique](https://cyclonedx.org/docs/1.6/json/#components_items_evidence_identity_oneOf_i0_items_methods_items_technique) and the value being the full search url used to retrieve the IDs.

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.